2010-10-28
|
|
Feindura CMS Groupware - Multiple Local File Inclusion / Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Justanotherhacker.com
|
2009-06-03
|
|
i-Gallery 3.4/4.1 - 'streamfile.asp' Multiple Directory Traversal Vulnerabilities
|
2 |
WEB
|
Stefano Angaran
|
2010-10-27
|
|
LES PACKS - 'ID' SQL Injection
|
2 |
WEB
|
Cru3l.b0y
|
2010-10-27
|
|
Joomla! Component Projects 'com_projects' - SQL Injection / Local File Inclusion
|
2 |
WEB
|
jos_ali_joe
|
2009-06-03
|
|
Flatnux 2009-03-27 - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
intern0t
|
2009-06-03
|
|
Sitecore CMS 6.0.0 rev. 090120 - 'default.aspx' Cross-Site Scripting
|
2 |
WEB
|
intern0t
|
2014-10-09
|
|
Nessus Web UI 2.3.3 - Persistent Cross-Site Scripting
|
2 |
WEB
|
Frank Lycops
|
2014-10-09
|
|
DrayTek VigorACS SI 1.3.0 - Multiple Vulnerabilities
|
2 |
WEB
|
Digital Misfits
|
2014-10-09
|
|
BMC Track-It! - Multiple Vulnerabilities
|
1 |
WEB
|
Pedro Ribeiro
|
2014-10-08
|
|
WordPress Plugin Creative Contact Form 0.9.7 - Arbitrary File Upload
|
2 |
WEB
|
Gianni Angelozzi
|
2014-10-07
|
|
HttpCombiner ASP.NET - Remote File Disclosure
|
0 |
WEB
|
Le Ngoc Son
|
2009-07-16
|
|
Skybluecanvas 1.1 r237 - 'admin.php' Directory Traversal
|
1 |
WEB
|
MaXe
|
2014-10-06
|
|
Ultra Electronics 7.2.0.19/7.4.0.7 - Multiple Vulnerabilities
|
1 |
WEB
|
OSI Security
|
2010-10-22
|
|
IBM Tivoli Access Manager for E-Business - '/ibm/wpm/webseal?method' Cross-Site Scripting
|
1 |
WEB
|
IBM
|
2010-10-22
|
|
IBM Tivoli Access Manager for E-Business - '/ibm/wpm/user?method' Cross-Site Scripting
|
1 |
WEB
|
IBM
|
2010-10-22
|
|
IBM Tivoli Access Manager for E-Business - '/ibm/wpm/rule?method' Cross-Site Scripting
|
1 |
WEB
|
IBM
|
2010-10-22
|
|
IBM Tivoli Access Manager for E-Business - '/ibm/wpm/pop?method' Cross-Site Scripting
|
1 |
WEB
|
IBM
|
2010-10-22
|
|
IBM Tivoli Access Manager for E-Business - '/ibm/wpm/os?method' Cross-Site Scripting
|
1 |
WEB
|
IBM
|
2010-10-22
|
|
IBM Tivoli Access Manager for E-Business - '/ibm/wpm/gsogroup?method' Cross-Site Scripting
|
1 |
WEB
|
IBM
|
2010-10-22
|
|
IBM Tivoli Access Manager for E-Business - '/ibm/wpm/gso?method' Cross-Site Scripting
|
1 |
WEB
|
IBM
|
2010-10-22
|
|
IBM Tivoli Access Manager for E-Business - '/ibm/wpm/group?method' Cross-Site Scripting
|
0 |
WEB
|
IBM
|
2010-10-22
|
|
IBM Tivoli Access Manager for E-Business - '/ibm/wpm/domain?method' Cross-Site Scripting
|
1 |
WEB
|
IBM
|
2010-10-22
|
|
IBM Tivoli Access Manager for E-Business - '/ibm/wpm/acl?method' Cross-Site Scripting
|
2 |
WEB
|
IBM
|
2010-10-22
|
|
IBM Tivoli Access Manager for E-Business - '/ivt/ivtserver?parm1' Cross-Site Scripting
|
2 |
WEB
|
IBM
|
2010-10-22
|
|
W-Agora 4.2.1 - 'search.php?bn' Cross-Site Scripting
|
2 |
WEB
|
MustLive
|
2010-10-22
|
|
W-Agora 4.2.1 - 'search.php3?bn' Traversal Local File Inclusion
|
2 |
WEB
|
MustLive
|
2009-08-24
|
|
Radvision Scopia - '/entry/index.jsp' Cross-Site Scripting
|
2 |
WEB
|
Francesco Bianchino
|
2009-08-20
|
|
PHP Scripts Now Riddles - '/riddles/list.php?catid' SQL Injection
|
2 |
WEB
|
Moudi
|
2009-08-20
|
|
PHP Scripts Now Riddles - '/riddles/results.php?searchQuery' Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2014-10-06
|
|
Bash CGI - 'Shellshock' Remote Command Injection (Metasploit)
|
1 |
WEB
|
Fady Mohammed Osman
|
2009-07-20
|
|
PHP Scripts Now (Multiple Products) - 'bios.php?rank' SQL Injection
|
2 |
WEB
|
599eme Man
|
2009-07-20
|
|
PHP Scripts Now (Multiple Products) - 'bios.php?rank' Cross-Site Scripting
|
1 |
WEB
|
599eme Man
|
2010-10-21
|
|
pecio CMS 2.0.5 - 'target' Cross-Site Scripting
|
2 |
WEB
|
Antu Sanadi
|
2010-10-21
|
|
Micro CMS 1.0 - 'name' HTML Injection (2)
|
2 |
WEB
|
SecPod Research
|
2010-10-21
|
|
Wiccle Web Builder 2.0 - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Veerendra G.G
|
2009-08-19
|
|
UloKI PHP Forum 2.1 - 'search.php' Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2009-08-26
|
|
JCE-Tech PHP Video Script - 'index.php' Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2009-08-26
|
|
Auction RSS Content Script - 'search.php?id' Cross-Site Scripting
|
1 |
WEB
|
Moudi
|
2009-08-26
|
|
Auction RSS Content Script - 'rss.php?id' Cross-Site Scripting
|
1 |
WEB
|
Moudi
|
2009-08-26
|
|
JCE-Tech SearchFeed Script - 'index.php' Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2010-10-19
|
|
4Site CMS 2.6 - 'cat' SQL Injection
|
2 |
WEB
|
High-Tech Bridge SA
|
2010-10-19
|
|
sNews 1.7 - 'snews.php' Cross-Site Scripting / HTML Injection
|
2 |
WEB
|
High-Tech Bridge SA
|
2009-08-27
|
|
StandAloneArcade 1.1 - 'gamelist.php' Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2009-08-26
|
|
DigiOz Guestbook 1.7.2 - 'search.php' Cross-Site Scripting
|
1 |
WEB
|
Moudi
|
2009-08-27
|
|
E-Gold Game Series: Pirates of The Caribbean - Multiple SQL Injections
|
1 |
WEB
|
Moudi
|
2009-08-28
|
|
QuarkMail - 'tf' Directory Traversal
|
1 |
WEB
|
Securitylab.ir
|
2009-10-15
|
|
Skybluecanvas 1.1 r237 - 'admin.php' Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
MaXe
|
2009-08-27
|
|
Wap-motor - 'image' Directory Traversal
|
0 |
WEB
|
Inj3ct0r
|
2009-07-15
|
|
eCardMAX FormXP - 'survey_result.php' Cross-Site Scripting
|
1 |
WEB
|
Moudi
|
2014-10-02
|
|
Moab < 7.2.9 - Authentication Bypass
|
1 |
WEB
|
MWR InfoSecurity
|
2014-10-02
|
|
Epicor Enterprise 7.4 - Multiple Vulnerabilities
|
1 |
WEB
|
Fara Rustein
|
2014-10-02
|
|
TestLink 1.9.11 - Multiple SQL Injections
|
1 |
WEB
|
Portcullis
|
2014-10-02
|
|
PHPCompta/NOALYSS 6.7.1 5638 - Remote Command Execution
|
1 |
WEB
|
Portcullis
|
2014-10-02
|
|
RBS Change Complet Open Source 3.6.8 - Cross-Site Request Forgery
|
1 |
WEB
|
Krusty Hack
|
2014-10-02
|
|
WordPress Plugin All In One WP Security & Firewall 3.8.3 - Persistent Cross-Site Scripting
|
1 |
WEB
|
Vulnerability-Lab
|
2014-10-02
|
|
Rejetto HTTP File Server (HFS) 2.3a/2.3b/2.3c - Remote Command Execution
|
1 |
WEB
|
Daniele Linguaglossa
|
2014-10-02
|
|
Bacula-Web 5.2.10 - 'joblogs.php?jobid' SQL Injection
|
1 |
WEB
|
wishnusakti
|
2010-10-15
|
|
eXV2 CMS - Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
LiquidWorm
|
2010-01-19
|
|
AdvertisementManager 3.1 - 'req' Local/Remote File Inclusion
|
1 |
WEB
|
indoushka
|
2009-08-07
|
|
PHP Easy Shopping Cart 3.1R - 'subitems.php' Cross-Site Scripting
|
1 |
WEB
|
Moudi
|
2009-08-07
|
|
PHP Photo Vote 1.3F - 'page' Cross-Site Scripting
|
1 |
WEB
|
Moudi
|
2010-10-14
|
|
TWiki 5.0 - bin/login Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
DOUHINE Davy
|
2010-10-14
|
|
TWiki 5.0 - '/bin/view?rev' Cross-Site Scripting
|
1 |
WEB
|
DOUHINE Davy
|
2010-10-13
|
|
PluXml 5.0.1 - Multiple Cross-Site Scripting / HTML Injection Vulnerabilities
|
1 |
WEB
|
High-Tech Bridge SA
|
2010-10-13
|
|
Ronny CMS 1.1 r935 - Multiple HTML Injection Vulnerabilities
|
1 |
WEB
|
High-Tech Bridge SA
|
2014-10-01
|
|
IPFire - CGI Web Interface (Authenticated) Bash Environment Variable Code Injection
|
1 |
WEB
|
Claudio Viviani
|
2010-10-13
|
|
Joomla! Component Jstore - 'Controller' Local File Inclusion
|
1 |
WEB
|
jos_ali_joe
|
2010-10-12
|
|
Oracle Fusion Middleware 10.1.2/10.1.3 - BPEL Console Cross-Site Scripting
|
1 |
WEB
|
Alexander Polyakov
|
2010-10-11
|
|
Joomla! / Mambo Component com_trade - 'PID' Cross-Site Scripting
|
1 |
WEB
|
FL0RiX
|
2010-10-06
|
|
Backbone Technology Expression 18.9.2010 - Cross-Site Scripting
|
2 |
WEB
|
High-Tech Bridge SA
|
2009-06-15
|
|
Recipe Script 5.0 - 'First Name' HTML Injection
|
2 |
WEB
|
ThE g0bL!N
|
2010-10-08
|
|
OPEN IT OverLook 5 - 'title.php' Cross-Site Scripting
|
2 |
WEB
|
Anatolia Security
|
2009-06-22
|
|
Curverider Elgg 1.0 - Templates HTML Injection
|
2 |
WEB
|
lorddemon
|
2010-10-08
|
|
Lantern CMS - '11-login.asp' Cross-Site Scripting
|
2 |
WEB
|
High-Tech Bridge SA
|
2010-10-06
|
|
Joomla! Component Club Manager - 'cm_id' SQL Injection
|
2 |
WEB
|
FL0RiX
|
2014-09-29
|
|
OpenFiler 2.99.1 - Cross-Site Request Forgery
|
2 |
WEB
|
Dolev Farhi
|
2014-09-29
|
|
Microsoft Exchange - IIS HTTP Internal IP Address Disclosure (Metasploit)
|
2 |
WEB
|
Nate Power
|
2014-09-29
|
|
GS Foto Uebertraeger 3.0 iOS - Local File Inclusion
|
2 |
WEB
|
Vulnerability-Lab
|
2010-10-05
|
|
SquirrelMail Virtual Keyboard Plugin - 'vkeyboard.php' Cross-Site Scripting
|
2 |
WEB
|
Moritz Naumann
|
2010-10-05
|
|
Elxis 2009.2 rev2631 - SQL Injection
|
2 |
WEB
|
High-Tech Bridge SA
|
2010-10-04
|
|
Docebo 3.6 - 'description' Cross-Site Scripting
|
1 |
WEB
|
High-Tech Bridge SA
|
2009-07-08
|
|
Linea21 1.2.1 - 'search' Cross-Site Scripting
|
2 |
WEB
|
599eme Man
|
2009-07-07
|
|
Tausch Ticket Script 3 - 'vote.php?descr' SQL Injection
|
2 |
WEB
|
Moudi
|
2009-07-07
|
|
Tausch Ticket Script 3 - 'suchauftraege_user.php?userid' SQL Injection
|
2 |
WEB
|
Moudi
|
2009-07-08
|
|
Rapidsendit Clone Script - 'admin.php' Insecure Cookie Authentication Bypass
|
2 |
WEB
|
NoGe
|
2009-07-08
|
|
JNM Solutions DB Top Sites 1.0 - 'vote.php' Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2009-07-09
|
|
JNM Guestbook 3.0 - 'index.php' Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2009-07-09
|
|
StatsCode - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
599eme Man
|
2009-07-07
|
|
Rentventory - 'index.php' Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
599eme Man
|
2009-07-09
|
|
Online Guestbook Pro 5.1 - 'ogp_show.php' Cross-Site Scripting
|
1 |
WEB
|
Moudi
|
2014-09-27
|
|
Typo3 Extension JobControl 2.14.0 - Cross-Site Scripting / SQL Injection
|
2 |
WEB
|
Adler Freiheit
|
2010-10-04
|
|
ITS SCADA - 'Username' SQL Injection
|
2 |
WEB
|
Eugene Salov
|
2010-10-04
|
|
Surgemail SurgeWeb 4.3e - Cross-Site Scripting
|
3 |
WEB
|
Kerem Kocaer
|
2009-07-09
|
|
WebAsyst Shop-Script - 'index.php' Cross-Site Scripting
|
2 |
WEB
|
Vrs-hCk
|
2010-10-01
|
|
Intellicom Netbiter webSCADA Products - 'read.cgi' Multiple Remote Security Vulnerabilities
|
2 |
WEB
|
Eugene Salov
|
2009-07-13
|
|
Top Paidmailer - 'home.php' Remote File Inclusion
|
3 |
WEB
|
Moudi
|
2009-07-07
|
|
Swinger Club Portal - 'start.php?go' Remote File Inclusion
|
2 |
WEB
|
Moudi
|
2009-07-07
|
|
Swinger Club Portal - 'start.php?id' SQL Injection
|
2 |
WEB
|
Moudi
|
2010-09-29
|
|
Pluck CMS 4.6.3 - 'cont1' HTML Injection
|
2 |
WEB
|
High-Tech Bridge SA
|
2010-09-29
|
|
Getsimple CMS 2.01 - 'changedata.php' Cross-Site Scripting
|
2 |
WEB
|
High-Tech Bridge SA
|
2010-09-29
|
|
MODx manager - '/controllers/default/resource/tvs.php?class_key' Traversal Local File Inclusion
|
2 |
WEB
|
John Leitch
|
2010-09-29
|
|
MODx 2.0.2-pl - '/manager/index.php?modahsh' Cross-Site Scripting
|
2 |
WEB
|
John Leitch
|
2009-07-14
|
|
eCardMAX - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Moudi
|
2010-09-28
|
|
PHPMyFAQ 2.6.x - 'index.php' Cross-Site Scripting
|
2 |
WEB
|
Yam Mesicka
|
2010-09-28
|
|
Micro CMS 1.0 - 'name' HTML Injection (1)
|
1 |
WEB
|
Veerendra G.G
|
2009-07-16
|
|
Scriptsez Ultimate Poll - 'demo_page.php' Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2010-09-27
|
|
NetArt Media Car Portal 2.0 - 'car' SQL Injection
|
2 |
WEB
|
RoAd_KiLlEr
|
2014-09-25
|
|
WordPress Plugin All In One WP Security 3.8.2 - SQL Injection
|
2 |
WEB
|
High-Tech Bridge SA
|
2014-09-25
|
|
Nucom ADSL ADSLR5000UN - ISP Credentials Disclosure
|
2 |
WEB
|
Sebastián Magof
|
2009-08-21
|
|
HotScripts Type PHP Clone Script - 'lostpassword.php?msg' Cross-Site Scripting
|
1 |
WEB
|
Moudi
|
2009-08-21
|
|
HotScripts Type PHP Clone Script - 'index.php?msg' Cross-Site Scripting
|
1 |
WEB
|
Moudi
|
2009-08-21
|
|
HotScripts Type PHP Clone Script - 'feedback.php?msg' Cross-Site Scripting
|
1 |
WEB
|
Moudi
|
2010-09-27
|
|
Horde IMP Webmail 4.3.7 - 'fetchmailprefs.php' HTML Injection
|
1 |
WEB
|
Moritz Naumann
|
2009-07-17
|
|
Honest Traffic - 'msg' Cross-Site Scripting
|
1 |
WEB
|
Moudi
|
2009-07-21
|
|
PHP Scripts Now Hangman - 'index.php?letters' Cross-Site Scripting
|
1 |
WEB
|
Moudi
|
2009-07-21
|
|
PHP Scripts Now Hangman - 'index.php?n' SQL Injection
|
1 |
WEB
|
Moudi
|
2010-09-27
|
|
MySITE - SQL Injection / Cross-Site Scripting
|
1 |
WEB
|
MustLive
|
2014-09-25
|
|
Cart Engine 3.0 - Multiple Vulnerabilities
|
1 |
WEB
|
Quantum Leap
|
2014-09-25
|
|
OSClass 3.4.1 - 'index.php' Local File Inclusion
|
1 |
WEB
|
Netsparker
|
2014-09-25
|
|
WordPress Plugin Login Widget With ShortCode 3.1.1 - Multiple Vulnerabilities
|
1 |
WEB
|
dxw
|
2014-09-24
|
|
webEdition 6.3.8.0 (SVN-Revision: 6985) - Directory Traversal
|
1 |
WEB
|
High-Tech Bridge SA
|
2014-09-24
|
|
Restaurant Script (PizzaInn Project) - Persistent Cross-Site Scripting
|
2 |
WEB
|
Kenneth F. Belva
|
2014-09-24
|
|
Glype 1.4.9 - Local Address Filter Bypass
|
1 |
WEB
|
Securify
|
2014-09-24
|
|
Glype 1.4.9 - Cookie Injection Directory Traversal Local File Inclusion
|
1 |
WEB
|
Securify
|
2014-09-24
|
|
Joomla! Component com_macgallery 1.5 - Arbitrary File Download
|
1 |
WEB
|
Claudio Viviani
|